PortSwigger / reflected-parameters
☆19Updated 4 years ago
Alternatives and similar repositories for reflected-parameters:
Users that are interested in reflected-parameters are comparing it to the libraries listed below
- ☆48Updated 4 years ago
- ☆59Updated 7 months ago
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- sub domain wild card filtering tool☆41Updated 4 years ago
- Burp Bounty profiles☆82Updated 3 years ago
- Dump all available paths and/or endpoints on WADL file.☆90Updated this week
- Some of my bug bounty tools☆48Updated 5 years ago
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 2 years ago
- ☆94Updated 3 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Updated 4 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 5 years ago
- commonspeak2 subdomains wordlist generated daily **DEPRECATED** The author(s) of commonspeak2 maintain an official repo with more lists. …☆40Updated 3 years ago
- A collection of scripts for bug-bounty related stuff☆38Updated 4 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- ☆76Updated 4 years ago
- Add headers to all Burp requests to bypass some WAF products☆38Updated last year
- a tool that compiles a csv of all h1 program stats☆46Updated last year
- ☆159Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- ☆71Updated last year
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆56Updated 2 years ago
- Extracts subdomains from a specified domain using https://recon.dev.☆16Updated 4 years ago
- Wraps projectdiscovery's cdncheck library to exclude CDN hosts from input passed over stdin☆42Updated last year
- A collection of Burp Suite Lambda Filters ~ Bambdas☆25Updated 4 months ago
- Expand urls into one url for each path depth☆32Updated 4 years ago
- ☆57Updated last month
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆43Updated 4 years ago
- Wordlist to bruteforce for LFI☆122Updated 5 years ago
- Send notifications on different channels such as Slack, Telegram, Discord etc.☆39Updated last year
- Enhanced 403 bypass header☆21Updated 2 years ago